[NEW] [UNPATCHED] [medium] Red Hat Quay: Vulnerability allows bypassing of security measures
A remote, authenticated attacker can exploit a vulnerability in Red Hat Quay to bypass security measures.
● Live advisory feed
Security advisories from 24 sources — CISA, CERT-EU, NCSC-UK, BSI, CERT-FR, NCSC-NL, JPCERT/CC, JVN, HKCERT, the Canadian Cyber Centre, NVD, GitHub, Microsoft, Cisco, Fortinet, Palo Alto Networks and more — normalized, translated to English and flagged against the CISA KEV catalog. One global feed for CSIRTs, SOCs and defenders.
A remote, authenticated attacker can exploit a vulnerability in Red Hat Quay to bypass security measures.
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Foo-over-UDP (FOU); - ARM64 architecture; - x86 architecture; - Block layer subsystem; - Cryptogra…
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Foo-over-UDP (FOU); - ARM64 architecture; - x86 architecture; - Block layer subsystem; - Cryptogra…
It was discovered that some AMD processors did not properly clear data in the floating point divider unit during speculative execution. A local attacker could use this to expose sensitive information. (CVE-2025-54505) It was discovered that some AMD Zen 2 processors did not prope…
A remote, anonymous or authenticated attacker can exploit multiple vulnerabilities in Znuny to disclose information.
A remote, anonymous attacker can exploit a vulnerability in QT to manipulate files.
A remote, anonymous attacker can exploit a vulnerability in gdk-pixbuf to disclose information.
A remote, anonymous attacker can exploit a vulnerability in PyTorch to conduct a denial of service attack and disclose information.
A remote, anonymous attacker can exploit a vulnerability in JetBrains PyCharm to execute arbitrary program code.
A remote, anonymous attacker can exploit multiple vulnerabilities in BusyBox to conduct a denial of service attack and manipulate files.
A local attacker can exploit a vulnerability in Apache Tomcat Connectors to conduct a denial of service attack.
A remote, anonymous attacker can exploit a vulnerability in libxml2 to disclose information.
A remote, anonymous attacker can exploit multiple vulnerabilities in Apache HTTP Server to conduct a denial of service attack.
A remote anonymous attacker can exploit a vulnerability in Apache Tomcat mod_jk Connector to bypass security measures or disclose confidential information.
A remote, anonymous attacker can exploit multiple vulnerabilities in Apache HTTP Server to conduct a response splitting attack.
A remote, anonymous attacker can exploit a vulnerability in Apache Commons Beanutils to bypass security precautions.
A remote, anonymous attacker can exploit multiple vulnerabilities in WordPress to execute arbitrary program code.
A local attacker can exploit a vulnerability in Bitdefender Internet Security and Bitdefender Total Security to escalate privileges.
A local attacker can exploit a vulnerability in wget to bypass security measures and conduct a server-side request forgery attack.
A local attacker can exploit a vulnerability in Red Hat Enterprise Linux (libinput) to escalate their privileges.
An attacker can exploit multiple vulnerabilities in Bouncy Castle BC-JAVA to bypass cryptographic security measures, disclose confidential information, or cause a denial-of-service condition.
An attacker can exploit multiple vulnerabilities in Apache ActiveMQ to conduct a denial of service attack or cause unspecified impacts.
A remote, anonymous attacker can exploit a vulnerability in Apache Kafka to disclose information.
A remote, authenticated attacker can exploit multiple vulnerabilities in Apache ActiveMQ to manipulate files or execute arbitrary code.
A remote, anonymous attacker can exploit multiple vulnerabilities in Squid to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in NGINX Plus and NGINX to conduct a denial of service attack, manipulate data, bypass security measures, and potentially execute arbitrary program code.
An attacker can exploit multiple vulnerabilities in Squid to disclose information and conduct an unspecified attack.
A local attacker can exploit multiple vulnerabilities in libexpat to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in Red Hat Build of Debezium for Red Hat Application Foundations to execute arbitrary program code.
An attacker can exploit multiple vulnerabilities in Apache ActiveMQ/Artemis to conduct an unspecified attack and bypass security precautions.
A remote, authenticated or anonymous attacker can exploit multiple vulnerabilities in PostgreSQL to disclose information, execute arbitrary code, and conduct unspecified attacks, potentially leading to privilege escalation.
An attacker can exploit multiple vulnerabilities in IBM WebSphere Application Server to bypass security measures and execute code.
An attacker can exploit multiple vulnerabilities in WebKitGTK to conduct a denial of service attack, disclose information, and bypass security precautions.
A remote, anonymous attacker can exploit a vulnerability in Red Hat OpenShift and OpenShift AI to conduct a denial of service attack.
An attacker can exploit multiple vulnerabilities in the Linux Kernel to perform unspecified attacks that may lead to a denial-of-service condition or cause memory corruption.
A remote, anonymous attacker can exploit a vulnerability in NGINX and NGINX Plus to conduct a denial of service attack and potentially execute arbitrary code.
A remote, authenticated or anonymous attacker can exploit multiple vulnerabilities in Red Hat Enterprise Linux to conduct a cross-site scripting attack, cause a denial-of-service condition, or disclose confidential information.
A local attacker can exploit multiple vulnerabilities in docker to execute arbitrary code with administrative privileges, cause a denial-of-service condition, or manipulate data.
An attacker can exploit multiple vulnerabilities in Apache HTTP Server to execute arbitrary code, disclose information, and bypass security measures.
A local attacker can exploit a vulnerability in the Linux Kernel to bypass security measures and disclose confidential information, enabling further attacks.
An attacker can exploit multiple vulnerabilities in VMware Cloud Foundation, VMware vSphere, VMware Aria Operations, and VMware Tools to gain elevated privileges – even administrative rights – and disclose confidential information.
A remote, authenticated attacker can exploit a vulnerability in Apache Commons BeanUtils to bypass security measures.
A remote, anonymous attacker can exploit a vulnerability in rsyslog to conduct a Denial of Service attack and potentially execute arbitrary program code.
A remote, anonymous attacker can exploit a vulnerability in Red Hat JBoss Enterprise Application Platform to disclose information.
A remote, anonymous attacker can exploit a vulnerability in OpenCTI to gain administrator rights.
Web Config embedded in SEIKO EPSON multiple printers and scanners contains a cross-site request forgery vulnerability.